9.3
/ 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Description
Anyscale Ray 2.52.0 contains an insecure default configuration in which token-based authentication for Ray management interfaces (including the dashboard and Jobs API) is disabled unless explicitly enabled by setting RAY_AUTH_MODE=token. In the default unauthenticated state, a remote attacker with network access to these interfaces can submit jobs and execute arbitrary code on the Ray cluster. NOTE: The vendor plans to enable token authentication by default in a future release. They recommend enabling token authentication to protect your cluster from unauthorized access.
AI Analysis
Insecure default configuration allows remote attackers to execute arbitrary code on the Ray cluster by submitting jobs through management interfaces without authentication.
Basic Information
ID
CVE-2025-34351
Source
VulnCheck
Published
Nov 27, 2025 at 02:45
Affected Product
Vendor
The Ray Team
Product
Anyscale Ray
Version
2.52.0
Affected Versions
The Ray Team Anyscale Ray 2.52.0
CWE Classification
AI Assessment
AI Score
9.3 / 10
AI Severity
Critical
Vendor
Anyscale
Product
Anyscale Ray
Version
2.52.0